Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjr7-mrw5-5m4x

Опубликовано: 27 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

A protocol flaw vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to leak sensitive user information.

A protocol flaw vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to leak sensitive user information.

EPSS

Процентиль: 29%
0.00105
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 6.5
nvd
11 месяцев назад

A protocol flaw vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to leak sensitive user information.

EPSS

Процентиль: 29%
0.00105
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-319